Aruba Airwave before version 8.2.3.1 is vulnerable to reflected cross-site scripting.
View the template here CVE-2016-8527.yaml
echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2016/CVE-2016-8527.yaml
References: